{"id":1026,"date":"2026-04-24T09:40:09","date_gmt":"2026-04-24T07:40:09","guid":{"rendered":"https:\/\/familiebuckens.nl\/?p=1026"},"modified":"2026-05-18T09:41:04","modified_gmt":"2026-05-18T07:41:04","slug":"firestarter-backdoor-hit-federal-cisco-firepower-device-survives-security-patches","status":"publish","type":"post","link":"https:\/\/familiebuckens.nl\/index.php\/2026\/04\/24\/firestarter-backdoor-hit-federal-cisco-firepower-device-survives-security-patches\/","title":{"rendered":"FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security Patches"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has revealed that an unnamed federal civilian agency&#8217;s Cisco Firepower device running Adaptive Security Appliance (ASA) software was compromised in September 2025 with a new malware called&nbsp;<strong>FIRESTARTER<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">FIRESTARTER, per CISA and the U.K.&#8217;s National Cyber Security Centre (NCSC), is\u00a0<a href=\"https:\/\/www.cisa.gov\/news-events\/analysis-reports\/ar26-113a\">assessed<\/a>\u00a0to be a backdoor designed for remote access and control. It&#8217;s believed to be deployed as part of a &#8220;widespread&#8221; campaign orchestrated by an advanced persistent threat (APT) actor to obtain access to Cisco Adaptive Security Appliance (ASA) firmware&#8230;<\/p>\n\n\n<a class=\"wp-block-read-more\" href=\"https:\/\/familiebuckens.nl\/index.php\/2026\/04\/24\/firestarter-backdoor-hit-federal-cisco-firepower-device-survives-security-patches\/\" target=\"_self\"><a href=\"https:\/\/thehackernews.com\/2026\/04\/firestarter-backdoor-hit-federal-cisco.html\">FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security Patches<\/a><span class=\"screen-reader-text\">: FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security Patches<\/span><\/a>\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has revealed that an unnamed federal civilian agency&#8217;s Cisco Firepower device running Adaptive Security Appliance (ASA) software was compromised in September 2025 with a new malware called&nbsp;FIRESTARTER. FIRESTARTER, per CISA and the U.K.&#8217;s National Cyber Security Centre (NCSC), is\u00a0assessed\u00a0to be a backdoor&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[17],"tags":[72],"class_list":["post-1026","post","type-post","status-publish","format-standard","hentry","category-vulnerability","tag-72"],"_links":{"self":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/1026","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/comments?post=1026"}],"version-history":[{"count":1,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/1026\/revisions"}],"predecessor-version":[{"id":1027,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/1026\/revisions\/1027"}],"wp:attachment":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/media?parent=1026"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/categories?post=1026"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/tags?post=1026"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}